5

CVE-2004-0501

Exploit
Outlook 2003 allows remote attackers to bypass intended access restrictions and cause Outlook to request a URL from a remote site via an HTML e-mail message containing a Vector Markup Language (VML) entity whose src parameter points to the remote site, which could allow remote attackers to know when a message has been read, verify valid e-mail addresses, and possibly leak other information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Outlook Version 2003
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.74% 0.969
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=108430168919965&w=2
http://marc.info/?l=bugtraq&m=108637351805607&w=2
http://marc.info/?l=ntbugtraq&m=108644231209698&w=2
http://www.securityfocus.com/bid/10323
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/16116